A user, who is waiting for a flight at an airport, logs in to the airline website using the public Wi-Fi, ignores a security warning and purchases an upgraded seat. When the flight lands, the user finds unauthorized credit card charges. Which of the following attacks most likely occurred?
Choose an answer
Tap an option to check your answer.
Correct answer: On-path attack.
Why this is the answer
An on-path attack (formerly known as a man-in-the-middle attack) is the most likely culprit. By ignoring the security warning, the user likely connected to a malicious access point or had their traffic intercepted by an attacker positioned between their device and the legitimate airline website. This allowed the attacker to eavesdrop on and potentially manipulate the communication, including capturing credit card details. A replay attack involves an attacker intercepting and retransmitting valid data, but it doesn't typically involve real-time interception and credential theft during a live transaction like this. Memory leaks and buffer overflows are software vulnerabilities that cause system instability or allow code execution, not direct interception of network traffic for credential theft.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed